Full Disclosure mailing list archives

Re: trixd00r v0.0.1 - Advanced and invisible TCP/IP based userland backdoor


From: Levent Kayan <levonkayan () gmx net>
Date: Wed, 08 Feb 2012 23:16:10 +0100

privet,

On 02/08/12 23:03, Kai wrote:
Hello,

trixd00r is an advanced and invisible userland backdoor based on TCP/IP
for UNIX systems. It consists of a server and a client. The server sits
and waits for magic packets using a sniffer. If a magic packet arrives,
it will bind a shell over TCP or UDP on the given port or connecting
back to the client again over TCP or UDP. The client is used to send
magic packets to trigger the server and get a shell.

it's... beautiful.

thank you.



docs/TODO:
add full tty/pty support

do you mean that your tool will include analog of this:
https://rdot.org/forum/showpost.php?p=15855&postcount=11 ? (russian
language)
if yes than 0.0.2 will be uberbeautiful.


no problem, as ex-CCCP guy i understand russian.

yes. 0.0.2 will become "uberbeautiful" and will include all stuff listed
in docs/TODO + bugfixes. this is only an initial release, stay tuned for
future releases...


cheers,
noptrix
-- 
Name: Levon 'noptrix' Kayan
E-Mail: noptrix () nullsecurity net
GPG key: 0x014652c0
Key fingerprint: ABEF 4B4B 5D93 32B8 D423 A623 823D 4162 0146 52C0
Homepage: http://www.nullsecurity.net/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: